Vulnerabilities > Improper Input Validation

DATE CVE VULNERABILITY TITLE RISK
2021-12-15 CVE-2021-1020 Improper Input Validation vulnerability in Google Android 12.0
In snoozeNotification of NotificationListenerService.java, there is a possible way to disable notification for an arbitrary user due to improper input validation.
local
low complexity
google CWE-20
7.3
2021-12-15 CVE-2021-1021 Improper Input Validation vulnerability in Google Android 12.0
In snoozeNotificationInt of NotificationManagerService.java, there is a possible way to disable notification for an arbitrary user due to improper input validation.
local
low complexity
google CWE-20
7.3
2021-12-15 CVE-2021-4117 Improper Input Validation vulnerability in Yetiforce Customer Relationship Management
yetiforcecrm is vulnerable to Business Logic Errors
network
low complexity
yetiforce CWE-20
4.3
2021-12-15 CVE-2021-20330 Improper Input Validation vulnerability in Mongodb
An attacker with basic CRUD permissions on a replicated collection can run the applyOps command with specially malformed oplog entries, resulting in a potential denial of service on secondaries.
network
low complexity
mongodb CWE-20
6.5
2021-12-15 CVE-2021-4111 Improper Input Validation vulnerability in Yetiforce Customer Relationship Management
yetiforcecrm is vulnerable to Business Logic Errors
network
low complexity
yetiforce CWE-20
4.3
2021-12-14 CVE-2021-42068 Improper Input Validation vulnerability in SAP 3D Visual Enterprise Viewer 9
When a user opens a manipulated GIF (.gif) file received from untrusted sources in SAP 3D Visual Enterprise Viewer - version 9.0, the application crashes and becomes temporarily unavailable to the user until restart of the application.
local
low complexity
sap CWE-20
3.3
2021-12-14 CVE-2021-42070 Improper Input Validation vulnerability in SAP 3D Visual Enterprise Viewer 9
When a user opens manipulated Jupiter Tessellation (.jt) file received from untrusted sources in SAP 3D Visual Enterprise Viewer - version 9.0, the application crashes and becomes temporarily unavailable to the user until restart of the application
local
low complexity
sap CWE-20
3.3
2021-12-13 CVE-2021-39932 Improper Input Validation vulnerability in Gitlab
An issue has been discovered in GitLab CE/EE affecting all versions starting from 11.0 before 14.3.6, all versions starting from 14.4 before 14.4.4, all versions starting from 14.5 before 14.5.2.
network
low complexity
gitlab CWE-20
4.3
2021-12-08 CVE-2021-25510 Improper Input Validation vulnerability in Google Android 10.0/11.0/9.0
An improper validation vulnerability in FilterProvider prior to SMR Dec-2021 Release 1 allows local arbitrary code execution.
local
low complexity
google CWE-20
7.8
2021-12-08 CVE-2021-25512 Improper Input Validation vulnerability in Google Android 10.0/11.0/9.0
An improper validation vulnerability in telephony prior to SMR Dec-2021 Release 1 allows attackers to launch certain activities.
local
low complexity
google CWE-20
7.8